logo

Hacking Tools, Hacker News & Cyber Security

ID: ac766fae-b76f-53b4-9f3b-da098b6b7fcf

STIX ID: report--ac766fae-b76f-53b4-9f3b-da098b6b7fcf

Feed Name: Darknet

Threat Score
75/100

Date Published: 2006-03-09

Date Updated: 2026-05-13

...
...

DumpBrowserSecrets is a post‑exploitation credential‑harvesting tool that extracts saved passwords, session cookies, OAuth refresh tokens, credit card data, autofill entries and browsing history from major Chromium‑based and Firefox browsers on Windows. It implements an App‑Bound Encryption bypass for Chrome/Brave/Edge by spawning a headless Chromium process and injecting a DLL (using Early Bird APC and the IElevator COM interface) to decrypt application‑bound keys, uses DPAPI extraction for some Chromium forks, and NSS decryption for Firefox; the tool includes operational evasion features and outputs structured JSON for red team and adversary use.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.